Current events | 2 min read
Recapping RSAC 2025: How AI, ethics, and geopolitical events combine in cybersecurity scenarios

Here's a recap of the Expel team's experience at RSAC 2025. We pet puppies and goats, played games, connected, and highlight trending topics.

Current events | 12 min read
Code-signing certificate abuse in the Black Basta chat leaks (and how to fight back)

Ransomware gang Black Basta's chats were recently leaked, proving how they abuse code-signing certificates. Here's how to defend against it.

Current events | 2 min read
A Valentine’s Day guide to protecting your digital heart

Happy Valentine's Day! Love is in the air, and unfortunately, so is cyber crime. Stay safe with these cybersecurity tips from Expel.

Current events | 2 min read
Patch Tuesday roundup for February 2025

The February 2025 edition of Patch Tuesday is live, including 63 published CVEs from Microsoft. Here are our top takeaways.

Current events | 2 min read
Patch Tuesday roundup for January 2025

The January 2025 edition of Patch Tuesday is live, including 159 published CVEs from Microsoft. Here are our top takeaways.

Current events | 4 min read
Expel’s predictions for 2025: our crystal ball says…

Read what our Expel experts are predicting for AI and security in 2025. These predictions can help you continue planning for new year.

Current events | 2 min read
Patch Tuesday roundup for December 2024

The December 2024 edition of Patch Tuesday is live, including 73 published CVEs from Microsoft. Here are our top takeaways.

Current events | 2 min read
Patch Tuesday roundup for November 2024

The November 2024 edition of Patch Tuesday is live, including 89 published CVEs from Microsoft. Here are our top takeaways.

Current events | 2 min read
A secure world is built together: closing out Cybersecurity Awareness Month

It's the end of Cybersecurity Awareness Month, but these resources are useful every month of the year to enhance resilience and stay secure.

Current events | 2 min read
Five security takeaways for Cybersecurity Awareness Month (and every month)

Expel analyst Aaron Walton was featured in Guidepoint Security's blog for Cybersecurity Awareness Month, and shared thoughts with other SOC members.

Current events | 2 min read
Patch Tuesday roundup for October 2024

The October 2024 edition of Patch Tuesday is live, including 117 published CVEs from Microsoft. Here are our top takeaways.

Current events | 2 min read
A secure world is built together: kicking off Cybersecurity Awareness Month

October kicks off Cybersecurity Awareness Month, and Expel is sharing its "a secure world is built together" theme for the month.

Current events | 2 min read
Patch Tuesday roundup for September 2024

The September 2024 edition of Patch Tuesday is live, including 79 published CVEs from Microsoft. Here are our top four takeaways.

Current events | 3 min read
A recap: Expel’s 2024 Black Hat experience

Black Hat 2024 is over, and the big themes this year were vulnerabilities, election infrastructure, and evaluating security maturity.

Current events | 2 min read
Patch Tuesday roundup for August 2024

The August 2024 edition of Patch Tuesday is live, including 53 published CVEs from Microsoft. Here are our top takeaways.

Current events | 2 min read
Patch Tuesday roundup for July 2024

The July 2024 edition of Patch Tuesday is live, including 53 published CVEs from Microsoft. Here are our top takeaways.

Current events | 2 min read
Patch Tuesday roundup for June 2024

The June 2024 edition of Patch Tuesday is live, including 53 published CVEs from Microsoft. Here are our top takeaways.

Current events | 1 min read
Patch Tuesday roundup for May 2024

Patch Tuesday for May 2024 includes 67 published CVEs from Microsoft, and VMware joins the party with four CVEs of its own.

Current events | 2 min read
Patch Tuesday roundup for April 2024

The April 2024 Patch Tuesday included 150 CVEs from Microsoft and 24 CVEs from Adobe. Here’s what our team recommends to reduce exploit risk.

Current events | 2 min read
Patch Tuesday roundup for March 2024

The March 2024 Patch Tuesday included 60 CVEs from Microsoft and 68 CVEs from Apple. Here’s what our team recommends to reduce exploit risk.

Current events | 2 min read
Why is NIST adding Governance to the NIST CSF 2.0?

As the security industry waits for NIST CSF 2.0 to publish, we shed some light on the question of what's changing and share what we know.

Current events | 1 min read
GKE/Gmail vulnerability: notes and tips

Security researchers have discovered a new Google Kubernetes Engine misconfiguration. Here’s what you need to know.

Current events | 7 min read
Attackers are expanding access through Amazon Cognito

Improperly configured AWS Cognito web portals can allow attackers to gain direct access to your AWS control plane. Here's how.

Current events | 2 min read
Our top five cybersecurity predictions for 2024

Here are our top five cybersecurity predictions for 2024 from Expel experts and leadership based on trends and current events.

Current events | 3 min read
Hackers tattle to SEC: is this a good thing for cyberdefenders?

The ALPHV/BlackCat ransomware gang filed an SEC complaint against a victim for not disclosing an attack. Is this the new normal?

Current events | 2 min read
Beware this new-ish attacker tactic: QR code attacks

There’s been an increased use in QR codes driving users to malicious URLs, aka qishing. Here’s how to avoid it.

Current events | 4 min read
What to expect in NIST CSF 2.0

The NIST Cybersecurity Framework 2.0 provides guidance and new tools for strategic development and program evaluation.

Current events | 4 min read
The clock is ticking: SEC reporting rules hit in December

The new SEC rules for reporting on material cybersecurity incidents go into effect in December. Learn how Expel can help you navigate it.